02-10-2011 06:07 AM - edited 03-10-2019 05:15 AM
Hi All,
Could any one give a brief explanation on the concept of "IPS on a Stick", am not getting a clear picture with the docs... Thanks in advance...
02-10-2011 07:46 AM
Not sure which docs you are viewing but my idea of it is just using on IPS appliance to inspect traffic inline between two VLANs. This IPS interface will have the two vlans paired and connected to a switch port configured as a trunk with the two vlans. You can have servers and PCs on one vlan and the gateway on the other vlan. That way all traffic leaving the network will have to cross through the IPS and get inspected.
Is this what you mean?
02-15-2011 01:26 AM
Hi Paul,
Thanks for the reply, so in that case both the inbound and outbound traffic passess in same physical interface?
02-15-2011 02:17 AM
Yes you are correct. Inbound and outbound traffic passes through the same physical interface and the sensor performs vlan tag swapping if the packet is allowed after inspection.
02-15-2011 02:54 AM
Thanks Gaurav...
02-15-2011 04:29 AM
Exactly
Sent from Cisco Technical Support iPhone App
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide